blog.duszynski.eu/domain-hijack-through-http-301-cache-poisoning

Preview meta tags from the blog.duszynski.eu website.

Linked Hostnames

9

Search Engine Appearance

Google

https://blog.duszynski.eu/domain-hijack-through-http-301-cache-poisoning

Permanent URL Hijack Through 301 HTTP Redirect Cache Poisoning

This blog post describes an interesting technique of abusing the standard HTTP 301 responses (“Permanent redirect”) to poison browser cache and achieve endpoint persistence for chosen non-TLS resources. Combined with the “Client Domain Hooking”, this has an interesting impact from the security point of view.



Bing

Permanent URL Hijack Through 301 HTTP Redirect Cache Poisoning

https://blog.duszynski.eu/domain-hijack-through-http-301-cache-poisoning

This blog post describes an interesting technique of abusing the standard HTTP 301 responses (“Permanent redirect”) to poison browser cache and achieve endpoint persistence for chosen non-TLS resources. Combined with the “Client Domain Hooking”, this has an interesting impact from the security point of view.



DuckDuckGo

https://blog.duszynski.eu/domain-hijack-through-http-301-cache-poisoning

Permanent URL Hijack Through 301 HTTP Redirect Cache Poisoning

This blog post describes an interesting technique of abusing the standard HTTP 301 responses (“Permanent redirect”) to poison browser cache and achieve endpoint persistence for chosen non-TLS resources. Combined with the “Client Domain Hooking”, this has an interesting impact from the security point of view.

  • General Meta Tags

    8
    • title
      Permanent URL Hijack Through 301 HTTP Redirect Cache Poisoning – duszynski.eu – Piotr Duszyński - Personal Blog
    • charset
      utf-8
    • Content-Type
      text/html; charset=utf-8
    • X-UA-Compatible
      IE=edge
    • viewport
      width=device-width, initial-scale=1.0, maximum-scale=1.0
  • Open Graph Meta Tags

    2
    • og:description
      This blog post describes an interesting technique of abusing the standard HTTP 301 responses (“Permanent redirect”) to poison browser cache and achieve endpoint persistence for chosen non-TLS resources. Combined with the “Client Domain Hooking”, this has an interesting impact from the security point of view.
    • og:title
      Permanent URL Hijack Through 301 HTTP Redirect Cache Poisoning
  • Link Tags

    3
    • alternate
      /feed.xml
    • stylesheet
      /style.css
    • stylesheet
      //cdnjs.cloudflare.com/ajax/libs/highlight.js/9.15.6/styles/default.min.css

Emails

1
  • ?subject=Permanent URL Hijack Through 301 HTTP Redirect Cache Poisoning&body=Hey! Please check this article out. It may be interesting for you. http://blog.duszynski.eu/domain-hijack-through-http-301-cache-poisoning/

Links

14